<?xml version="1.0" encoding="UTF-8"?>
<?xml-stylesheet title="XSL_formatting" type="text/xsl" href="/static/rss/intro.xsl" ?>
  
<rss version="2.0">
    <channel>
        <title>Security Advisories</title>
        <link>http://security.salesforce.com</link>
        <description>undefined</description>
        <lastBuildDate>Fri, 08 May 2026 12:54:52 GMT</lastBuildDate>
        <docs>https://validator.w3.org/feed/docs/rss2.html</docs>
        <generator>https://github.com/jpmonette/feed</generator>
        <language>en</language>
        <item>
            <title><![CDATA[[Vulnerability] CVE-2023-46604]]></title>
            <link>https://kb.tableau.com/articles/Issue/remote-code-execution-rce-vulnerability-impacting-apache-activemq-clients</link>
            <guid>https://kb.tableau.com/articles/Issue/remote-code-execution-rce-vulnerability-impacting-apache-activemq-clients</guid>
            <pubDate>Mon, 01 Apr 2024 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] On November 2, 2023, Salesforce Security was notified of CVE-2023-46604, a remote code execution (RCE) vulnerability impacting Apache ActiveMQ clients.]]></description>
        </item>
        <item>
            <title><![CDATA[[Security Update] Security Assessments]]></title>
            <link>https://kb.tableau.com/articles/issue/adv-2023-001-tabpy-unauthenticated-access-to-tableau-server</link>
            <guid>https://kb.tableau.com/articles/issue/adv-2023-001-tabpy-unauthenticated-access-to-tableau-server</guid>
            <pubDate>Wed, 28 Jun 2023 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] Tableau Python Server (TabPy) installations may be configured to execute arbitrary python code without authentication. Products Affected: TabPy 2.8.0 and earlier.]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] CVE-2023-34362 and CVE-2023-35036]]></title>
            <link>https://help.salesforce.com/s/articleView?id=000395641&amp;type=1</link>
            <guid>https://help.salesforce.com/s/articleView?id=000395641&amp;type=1</guid>
            <pubDate>Tue, 13 Jun 2023 09:00:00 GMT</pubDate>
            <description><![CDATA[ Two vulnerabilities could lead to unauthorized access to the MOVEit file transfer product and environment. No impact to Salesforce customer data at this time.]]></description>
        </item>
        <item>
            <title><![CDATA[[Process Update] Security Assessments]]></title>
            <link>https://help.salesforce.com/s/articleView?id=000394469&amp;type=1</link>
            <guid>https://help.salesforce.com/s/articleView?id=000394469&amp;type=1</guid>
            <pubDate>Tue, 31 Jan 2023 00:00:00 GMT</pubDate>
            <description><![CDATA[ Customers are no longer required to obtain prior approval before performing security assessments for Salesforce products.]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] CVE-2022-22128]]></title>
            <link>https://kb.tableau.com/articles/Issue/issue-affecting-tableau-server-administration-agent</link>
            <guid>https://kb.tableau.com/articles/Issue/issue-affecting-tableau-server-administration-agent</guid>
            <pubDate>Fri, 14 Oct 2022 11:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] Issue affecting Tableau Server Administration Agent]]></description>
        </item>
        <item>
            <title><![CDATA[[ Vulnerability] Tableau security update]]></title>
            <link>https://help.salesforce.com/s/articleView?id=000365859&amp;type=1</link>
            <guid>https://help.salesforce.com/s/articleView?id=000365859&amp;type=1</guid>
            <pubDate>Wed, 22 Jun 2022 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] Tableau Server logging Personal Access Tokens into internal log repositories]]></description>
        </item>
        <item>
            <title><![CDATA[[ Vulnerability] CVE-2022-22127]]></title>
            <link>https://help.salesforce.com/s/articleView?id=000365493&amp;type=1</link>
            <guid>https://help.salesforce.com/s/articleView?id=000365493&amp;type=1</guid>
            <pubDate>Mon, 23 May 2022 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] Broken access control vulnerability in Tableau Server]]></description>
        </item>
        <item>
            <title><![CDATA[[Security Notification] Heroku security notification]]></title>
            <link>https://status.heroku.com/incidents/2413</link>
            <guid>https://status.heroku.com/incidents/2413</guid>
            <pubDate>Fri, 15 Apr 2022 10:45:00 GMT</pubDate>
            <description><![CDATA[[Heroku] GitHub repositories connected to Heroku issue]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] Spring4Shell Security Update]]></title>
            <link>https://help.salesforce.com/s/articleView?id=000365020&amp;type=1</link>
            <guid>https://help.salesforce.com/s/articleView?id=000365020&amp;type=1</guid>
            <pubDate>Wed, 30 Mar 2022 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau, Slack, Service Cloud, Salesforce Einstein, Salesforce Core, Sales Cloud, Quip, Pardot, MuleSoft, Marketing Cloud, Hyperforce, Heroku, Experience Cloud, Commerce Cloud, ClickSoftware] Spring4Shell vulnerability published in March 2022]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] Apache Log4j2 vulnerability]]></title>
            <link>https://help.salesforce.com/s/articleView?id=000363736&amp;type=1</link>
            <guid>https://help.salesforce.com/s/articleView?id=000363736&amp;type=1</guid>
            <pubDate>Fri, 10 Dec 2021 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau, Service Cloud, Slack, Salesforce Einstein, Salesforce Core, Sales Cloud, Quip, Pardot, MuleSoft, Marketing Cloud, Hyperforce, Heroku, Experience Cloud, ClickSoftware, Commerce Cloud] Apache Log4j2 vulnerability published on December 10, 2021]]></description>
        </item>
        <item>
            <title><![CDATA[[Security Update] Nobelium Attacks Targeting Cloud Services, Supply Chains]]></title>
            <link>https://help.salesforce.com/s/articleView?id=000363417&amp;type=1</link>
            <guid>https://help.salesforce.com/s/articleView?id=000363417&amp;type=1</guid>
            <pubDate>Wed, 27 Oct 2021 00:00:00 GMT</pubDate>
            <description><![CDATA[ Response to October 24, 2021, Microsoft blog post]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] ADV-2021-017]]></title>
            <link>https://help.salesforce.com/s/articleView?id=000363324&amp;type=1</link>
            <guid>https://help.salesforce.com/s/articleView?id=000363324&amp;type=1</guid>
            <pubDate>Thu, 21 Oct 2021 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] Sensitive Information Exposure]]></description>
        </item>
        <item>
            <title><![CDATA[[Security Update] Configuration of Salesforce Developer Experience Command Line Interface]]></title>
            <link>https://help.salesforce.com/s/articleView?id=000363271&amp;type=1</link>
            <guid>https://help.salesforce.com/s/articleView?id=000363271&amp;type=1</guid>
            <pubDate>Mon, 04 Oct 2021 00:00:00 GMT</pubDate>
            <description><![CDATA[ Response to October 4, 2021, CERT Coordination Center note (VU#883754) ]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] ADV-2021-016]]></title>
            <link>https://help.salesforce.com/s/articleView?id=000363184&amp;type=1</link>
            <guid>https://help.salesforce.com/s/articleView?id=000363184&amp;type=1</guid>
            <pubDate>Wed, 22 Sep 2021 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] Information Disclosure]]></description>
        </item>
        <item>
            <title><![CDATA[[Security Notification] Oracle NetSuite and SAP SuccessFactors connectors issue]]></title>
            <link>https://kb.tableau.com/articles/issue/oracle-netsuite-and-sap-successfactors-connectors-used-in-tableau-gallery-may-be-storing-sensitive-data</link>
            <guid>https://kb.tableau.com/articles/issue/oracle-netsuite-and-sap-successfactors-connectors-used-in-tableau-gallery-may-be-storing-sensitive-data</guid>
            <pubDate>Mon, 16 Aug 2021 00:00:00 GMT</pubDate>
            <description><![CDATA[ Oracle NetSuite and SAP SuccessFactors connectors used in Tableau Gallery may be storing sensitive data in a subset of Tableau On-Premise customers’ logging infrastructure  ]]></description>
        </item>
        <item>
            <title><![CDATA[[Security Update] Configuration of Salesforce Sites and Communities Guest User Access Control Permissions]]></title>
            <link>https://help.salesforce.com/s/articleView?id=000362826&amp;type=1</link>
            <guid>https://help.salesforce.com/s/articleView?id=000362826&amp;type=1</guid>
            <pubDate>Wed, 11 Aug 2021 00:00:00 GMT</pubDate>
            <description><![CDATA[ Response to August 10, 2021, Varonis blog post]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] CVE-2021-1630]]></title>
            <link>https://help.salesforce.com/articleView?id=000362693&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000362693&amp;type=1&amp;mode=1</guid>
            <pubDate>Wed, 28 Jul 2021 00:00:00 GMT</pubDate>
            <description><![CDATA[[MuleSoft] XML external entity (XXE) vulnerability in Mule runtime]]></description>
        </item>
        <item>
            <title><![CDATA[[Ransomware] Kaseya Ransomware Attack]]></title>
            <link>https://help.salesforce.com/articleView?id=000359083&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000359083&amp;type=1&amp;mode=1</guid>
            <pubDate>Wed, 07 Jul 2021 00:00:00 GMT</pubDate>
            <description><![CDATA[ Kaseya VSA ransomware attack on July 2, 2021
]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] ADV-2021-015]]></title>
            <link>https://help.salesforce.com/articleView?id=000358970&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000358970&amp;type=1&amp;mode=1</guid>
            <pubDate>Tue, 22 Jun 2021 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] Improper Data Cache Access Control When Using Initial SQL]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] ADV-2021-013]]></title>
            <link>https://help.salesforce.com/articleView?id=000358015&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000358015&amp;type=1&amp;mode=1</guid>
            <pubDate>Thu, 22 Apr 2021 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] Sensitive Information Logged]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] Codecov Bash Uploader Compromise]]></title>
            <link>https://help.salesforce.com/articleView?id=000358035&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000358035&amp;type=1&amp;mode=1</guid>
            <pubDate>Thu, 15 Apr 2021 00:00:00 GMT</pubDate>
            <description><![CDATA[ Bash Uploader users’ secrets compromised by threat actor]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] ADV-2021-009]]></title>
            <link>https://help.salesforce.com/articleView?id=000357456&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000357456&amp;type=1&amp;mode=1</guid>
            <pubDate>Thu, 25 Mar 2021 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] Information Disclosure]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] Microsoft Exchange Server vulnerabilities]]></title>
            <link>https://help.salesforce.com/articleView?id=000357525&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000357525&amp;type=1&amp;mode=1</guid>
            <pubDate>Wed, 24 Mar 2021 00:00:00 GMT</pubDate>
            <description><![CDATA[ Microsoft Exchange Server vulnerabilities published on March 2, 2021 ]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] ADV-2021-010]]></title>
            <link>https://help.salesforce.com/articleView?id=000357424&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000357424&amp;type=1&amp;mode=1</guid>
            <pubDate>Tue, 23 Mar 2021 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] Tableau Server Open Redirect]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] ADV-2021-011]]></title>
            <link>https://help.salesforce.com/articleView?id=000357453&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000357453&amp;type=1&amp;mode=1</guid>
            <pubDate>Tue, 23 Mar 2021 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] Denial of Service Vulnerability in Tableau Server]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] ADV-2021-012]]></title>
            <link>https://help.salesforce.com/articleView?id=000357454&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000357454&amp;type=1&amp;mode=1</guid>
            <pubDate>Tue, 23 Mar 2021 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] HTML Injection in Emails]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] CVE-2021-1627]]></title>
            <link>https://help.salesforce.com/articleView?id=000357383&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000357383&amp;type=1&amp;mode=1</guid>
            <pubDate>Mon, 22 Mar 2021 00:00:00 GMT</pubDate>
            <description><![CDATA[[MuleSoft] Server Side Request Forgery in Mule runtime]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] CVE-2021-1626]]></title>
            <link>https://help.salesforce.com/articleView?id=000357382&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000357382&amp;type=1&amp;mode=1</guid>
            <pubDate>Mon, 22 Mar 2021 00:00:00 GMT</pubDate>
            <description><![CDATA[[MuleSoft] Remote Code Execution vulnerability in Mule runtime]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] CVE-2021-1628]]></title>
            <link>https://help.salesforce.com/articleView?id=000357384&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000357384&amp;type=1&amp;mode=1</guid>
            <pubDate>Mon, 22 Mar 2021 00:00:00 GMT</pubDate>
            <description><![CDATA[[MuleSoft] XML External Entity (XXE) vulnerability in Mule runtime]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] ADV-2021-005]]></title>
            <link>https://help.salesforce.com/articleView?id=000356891&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000356891&amp;type=1&amp;mode=1</guid>
            <pubDate>Thu, 25 Feb 2021 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] Tableau Server Logs Postgres Repository Password]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] ADV-2021-007]]></title>
            <link>https://help.salesforce.com/articleView?id=000356889&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000356889&amp;type=1&amp;mode=1</guid>
            <pubDate>Thu, 25 Feb 2021 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] Database Password Logged in Debug Log]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] ADV-2021-008]]></title>
            <link>https://help.salesforce.com/articleView?id=000356888&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000356888&amp;type=1&amp;mode=1</guid>
            <pubDate>Thu, 25 Feb 2021 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] Information Disclosure]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] ADV-2021-006]]></title>
            <link>https://help.salesforce.com/articleView?id=000356890&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000356890&amp;type=1&amp;mode=1</guid>
            <pubDate>Thu, 25 Feb 2021 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] Not All Secrets Encrypted In Configuration]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] ADV-2021-004]]></title>
            <link>https://help.salesforce.com/articleView?id=000356295&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000356295&amp;type=1&amp;mode=1</guid>
            <pubDate>Thu, 21 Jan 2021 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] Memory Corruption]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] ADV-2021-003]]></title>
            <link>https://help.salesforce.com/articleView?id=000356296&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000356296&amp;type=1&amp;mode=1</guid>
            <pubDate>Thu, 21 Jan 2021 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] Authentication Bypass in IPv6 Networks]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] ADV-2021-001]]></title>
            <link>https://help.salesforce.com/articleView?id=000356299&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000356299&amp;type=1&amp;mode=1</guid>
            <pubDate>Thu, 21 Jan 2021 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] Reflected Error Message Content Injection]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] ADV-2021-002]]></title>
            <link>https://help.salesforce.com/articleView?id=000356297&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000356297&amp;type=1&amp;mode=1</guid>
            <pubDate>Thu, 21 Jan 2021 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] Information Disclosure]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] ADV-2020-059]]></title>
            <link>https://help.salesforce.com/articleView?id=000356022&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000356022&amp;type=1&amp;mode=1</guid>
            <pubDate>Wed, 16 Dec 2020 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] Tableau Fixes a Vulnerability in QtWebEngine]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability ] ADV-2020-060]]></title>
            <link>https://help.salesforce.com/articleView?id=000356023&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000356023&amp;type=1&amp;mode=1</guid>
            <pubDate>Wed, 16 Dec 2020 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] Tableau Server Default Installation Weak Folder Permissions]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] ADV-2020-061]]></title>
            <link>https://help.salesforce.com/articleView?id=000356024&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000356024&amp;type=1&amp;mode=1</guid>
            <pubDate>Wed, 16 Dec 2020 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] Tableau Server Non-Default Installation Weak Folder Permissions]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] SolarWinds Software Compromise]]></title>
            <link>https://help.salesforce.com/articleView?id=000356007&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000356007&amp;type=1&amp;mode=1</guid>
            <pubDate>Tue, 15 Dec 2020 00:00:00 GMT</pubDate>
            <description><![CDATA[ Federal government and Fortune 500 companies compromised by supply chain attack]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] CVE-2020-6939]]></title>
            <link>https://help.salesforce.com/articleView?id=000355686&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000355686&amp;type=1&amp;mode=1</guid>
            <pubDate>Thu, 19 Nov 2020 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] Unauthenticated API Endpoints]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] ADV-2020-057]]></title>
            <link>https://help.salesforce.com/articleView?id=000355688&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000355688&amp;type=1&amp;mode=1</guid>
            <pubDate>Thu, 19 Nov 2020 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] File Path Disclosure of Temporary Files]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] ADV-2020-056]]></title>
            <link>https://help.salesforce.com/articleView?id=000355687&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000355687&amp;type=1&amp;mode=1</guid>
            <pubDate>Thu, 19 Nov 2020 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] Unauthenticated API Endpoints]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] ADV-2020-058]]></title>
            <link>https://help.salesforce.com/articleView?id=000355713&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000355713&amp;type=1&amp;mode=1</guid>
            <pubDate>Thu, 19 Nov 2020 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] Privilege Escalation in Tableau Products]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] ADV-2020-053]]></title>
            <link>https://help.salesforce.com/articleView?id=000355523&amp;language=en_US&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000355523&amp;language=en_US&amp;type=1&amp;mode=1</guid>
            <pubDate>Thu, 29 Oct 2020 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] Non-ASCII characters parsing error]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] ADV-2020-052]]></title>
            <link>https://help.salesforce.com/articleView?id=000355522&amp;language=en_US&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000355522&amp;language=en_US&amp;type=1&amp;mode=1</guid>
            <pubDate>Thu, 29 Oct 2020 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] Tableau Server Allows External Web Pages In Web Zones]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] ADV-2020-054]]></title>
            <link>https://help.salesforce.com/articleView?language=en_US&amp;type=1&amp;mode=1&amp;id=000355524</link>
            <guid>https://help.salesforce.com/articleView?language=en_US&amp;type=1&amp;mode=1&amp;id=000355524</guid>
            <pubDate>Thu, 29 Oct 2020 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] Tableau Desktop stores plaintext secrets in configuration file]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] ADV-2020-055]]></title>
            <link>https://help.salesforce.com/articleView?id=000355525&amp;language=en_US&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000355525&amp;language=en_US&amp;type=1&amp;mode=1</guid>
            <pubDate>Thu, 29 Oct 2020 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] Database Credentials In Log Files]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] ADV-2020-051]]></title>
            <link>https://help.salesforce.com/articleView?id=000355243&amp;language=en_US&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000355243&amp;language=en_US&amp;type=1&amp;mode=1</guid>
            <pubDate>Wed, 30 Sep 2020 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] Tableau Products Integer Overflow]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] ADV-2020-046]]></title>
            <link>https://help.salesforce.com/articleView?id=000354775&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000354775&amp;type=1&amp;mode=1</guid>
            <pubDate>Thu, 27 Aug 2020 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] Tableau Server Sensitive Values In Logs]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] ADV-2020-047]]></title>
            <link>https://help.salesforce.com/articleView?id=000354776&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000354776&amp;type=1&amp;mode=1</guid>
            <pubDate>Thu, 27 Aug 2020 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] Some Permission Changes Don't Take Effect Until Server Restart]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] ADV-2020-045]]></title>
            <link>https://help.salesforce.com/articleView?id=000354774&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000354774&amp;type=1&amp;mode=1</guid>
            <pubDate>Thu, 27 Aug 2020 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] Tableau Server Logs Contain Webhook URLs]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] ADV-2020-044]]></title>
            <link>https://help.salesforce.com/articleView?id=000354773&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000354773&amp;type=1&amp;mode=1</guid>
            <pubDate>Thu, 27 Aug 2020 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] External Service Connection Fails To Validate Host Name]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] ADV-2020-048]]></title>
            <link>https://help.salesforce.com/articleView?id=000354777&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000354777&amp;type=1&amp;mode=1</guid>
            <pubDate>Thu, 27 Aug 2020 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] Tableau Server Sensitive Values In Log File Location]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] ADV-2020-049]]></title>
            <link>https://help.salesforce.com/articleView?id=000354778&amp;language=en_US&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000354778&amp;language=en_US&amp;type=1&amp;mode=1</guid>
            <pubDate>Thu, 27 Aug 2020 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] Plaintext Data Source Secrets In Repository]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] ADV-2020-050]]></title>
            <link>https://help.salesforce.com/articleView?id=000354779&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000354779&amp;type=1&amp;mode=1</guid>
            <pubDate>Thu, 27 Aug 2020 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] REST API Returns a Site Configuration Value to Unauthenticated Users]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] CVE-2020-6938]]></title>
            <link>https://help.salesforce.com/articleView?id=000354158&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000354158&amp;type=1&amp;mode=1</guid>
            <pubDate>Tue, 07 Jul 2020 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] Sensitive information disclosure vulnerability in Tableau Server]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] CVE-2020-6937]]></title>
            <link>https://help.mulesoft.com/s/article/High-security-issue-affecting-Mule-runtimes-of-all-supported-versions-March-19th-2020</link>
            <guid>https://help.mulesoft.com/s/article/High-security-issue-affecting-Mule-runtimes-of-all-supported-versions-March-19th-2020</guid>
            <pubDate>Tue, 26 May 2020 00:00:00 GMT</pubDate>
            <description><![CDATA[[MuleSoft] Denial of Service vulnerability in Mule runtime]]></description>
        </item>
        <item>
            <title><![CDATA[[Security Enhancements] COVID-19 Business Continuity Statement]]></title>
            <link>https://help.salesforce.com/articleView?id=000352932&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000352932&amp;type=1&amp;mode=1</guid>
            <pubDate>Tue, 17 Mar 2020 00:00:00 GMT</pubDate>
            <description><![CDATA[ Salesforce has not experienced any significant business impacts]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] CVE-2019-15631]]></title>
            <link>https://help.salesforce.com/articleView?id=000351827&amp;language=en_US&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000351827&amp;language=en_US&amp;type=1&amp;mode=1</guid>
            <pubDate>Fri, 29 Nov 2019 00:00:00 GMT</pubDate>
            <description><![CDATA[[MuleSoft] Remote Code Execution in Mule runtime and API Gateway]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] CVE-2019-15630]]></title>
            <link>https://help.mulesoft.com/s/article/Directory-traversal-vulnerability-affecting-runtimes-of-MuleSoft-customers-running-certain-use-cases-of-Mule-flows-and-API-Gateways</link>
            <guid>https://help.mulesoft.com/s/article/Directory-traversal-vulnerability-affecting-runtimes-of-MuleSoft-customers-running-certain-use-cases-of-Mule-flows-and-API-Gateways</guid>
            <pubDate>Fri, 30 Aug 2019 00:00:00 GMT</pubDate>
            <description><![CDATA[[MuleSoft] Directory Traversal in MuleSoft Runtime]]></description>
        </item>
        <item>
            <title><![CDATA[[Security Enhancements] Manage Security Contacts for Your Organization]]></title>
            <link>https://help.salesforce.com/articleView?id=000349483&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000349483&amp;type=1&amp;mode=1</guid>
            <pubDate>Mon, 01 Jul 2019 00:00:00 GMT</pubDate>
            <description><![CDATA[ If your organization is impacted by an information security incident, your organization’s Security Contact(s) will be notified.]]></description>
        </item>
        <item>
            <title><![CDATA[[Security Enhancements] Enhancements to Security of Community and Portal Users]]></title>
            <link>https://help.salesforce.com/articleView?id=000323376&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000323376&amp;type=1&amp;mode=1</guid>
            <pubDate>Mon, 13 May 2019 00:00:00 GMT</pubDate>
            <description><![CDATA[ Potential impact to default sharing settings]]></description>
        </item>
        <item>
            <title><![CDATA[[Email Scam] Phishing Campaign]]></title>
            <link>https://help.salesforce.com/articleView?id=000318462&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000318462&amp;type=1&amp;mode=1</guid>
            <pubDate>Wed, 28 Nov 2018 00:00:00 GMT</pubDate>
            <description><![CDATA[ Salesforce-themed phishing campaign]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] Salesforce Security Vulnerability]]></title>
            <link>https://help.salesforce.com/articleView?id=000312863&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000312863&amp;type=1&amp;mode=1</guid>
            <pubDate>Fri, 05 Oct 2018 00:00:00 GMT</pubDate>
            <description><![CDATA[ Security vulnerability impact on Salesforce Sites and Communities]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] Twitter Account Activity API]]></title>
            <link>https://help.salesforce.com/articleView?id=000312848&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000312848&amp;type=1&amp;mode=1</guid>
            <pubDate>Fri, 21 Sep 2018 00:00:00 GMT</pubDate>
            <description><![CDATA[ Vulnerability of Twitter Account Activity API]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability/Ransomware] MS17-010 Vulnerability (AKA EternalBlue)]]></title>
            <link>https://help.salesforce.com/articleView?id=000320088&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000320088&amp;type=1&amp;mode=1</guid>
            <pubDate>Tue, 27 Jun 2017 00:00:00 GMT</pubDate>
            <description><![CDATA[ Malware leveraging MS17-010 (AKA EternalBlue) Vulnerability]]></description>
        </item>
        <item>
            <title><![CDATA[[Malware] TrickBot / The Trick]]></title>
            <link>https://help.salesforce.com/articleView?id=000319415&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000319415&amp;type=1&amp;mode=1</guid>
            <pubDate>Wed, 21 Jun 2017 00:00:00 GMT</pubDate>
            <description><![CDATA[ Malware may target Salesforce Users.]]></description>
        </item>
        <item>
            <title><![CDATA[[Ransomware] WannaCry Ransomware]]></title>
            <link>https://help.salesforce.com/articleView?id=000317521&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000317521&amp;type=1&amp;mode=1</guid>
            <pubDate>Mon, 15 May 2017 00:00:00 GMT</pubDate>
            <description><![CDATA[ Ransomware targeting Windows "Eternal Blue" vulnerability.]]></description>
        </item>
        <item>
            <title><![CDATA[[Email Scam] Google Docs Phishing Campaign]]></title>
            <link>https://trust.salesforce.com/en/security/stay-current-security/</link>
            <guid>https://trust.salesforce.com/en/security/stay-current-security/</guid>
            <pubDate>Wed, 03 May 2017 00:00:00 GMT</pubDate>
            <description><![CDATA[ Google Docs invitation containing a phishing link.]]></description>
        </item>
        <item>
            <title><![CDATA[[Service Provider Vulnerability] Cloudflare Vulnerability]]></title>
            <link>https://help.salesforce.com/articleView?id=000320268&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000320268&amp;type=1&amp;mode=1</guid>
            <pubDate>Mon, 27 Feb 2017 00:00:00 GMT</pubDate>
            <description><![CDATA[ Cloudflare, an embedded content delivery network and internet security services provider, disclosed a security vulnerability in their edge servers, which could expose information such as HTTP cookies, authentication tokens, and HTTP POST bodies.]]></description>
        </item>
    </channel>
</rss>